Tech

AWS customers hit by major cyberattack which then stored stolen credentials in plain sight

Share
Share


  • Researchers find vulnerabilities in public sites that exposed sensitive information
  • They later discovered a campaign using the flaws to exfiltrate data from “millions of websites”
  • The crooks were selling the data on the dark web for “hundreds of euros”

Misconfigured cloud instances have once again been abused to steal sensitive information such as login credentials, API keys, and more.

This time around, the victims were countless Amazon Web Services (AWS) customers who don’t seem to understand the shared responsibility model of cloud infrastructure.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
AI GPUs will soon need more power than a small country, as HBM memory growth spirals out of control
Tech

AI GPUs will soon need more power than a small country, as HBM memory growth spirals out of control

Future AI memory chips could demand more power than entire industrial zones...

This family sitcom with 100% on Rotten Tomatoes is consistently among the most-watched shows on Disney+ and I know why
Tech

This family sitcom with 100% on Rotten Tomatoes is consistently among the most-watched shows on Disney+ and I know why

Some shows appear and disappear almost overnight; others become institutions. Modern Family...

Mobile banking users beware – “Godfather” malware is now hijacking official bank apps
Tech

Mobile banking users beware – “Godfather” malware is now hijacking official bank apps

Zimperium spots new version of Godfather among Turkish Android users New version...